Ransomware note
From extortion.wiki, the ransomware notes archive
- Family
- M3RX
- Original file
- RECOVERY_NOTES.TXT
- Source snapshot
- 2bbf5b4ecda8
- Archive ID
- note-m3rx-recovery-notes-txt
A byte-attributed static rendering of the archived source text. Content is escaped, selectable, and inert; extortion.wiki does not execute markup, activate source URLs, submit forms, or load external resources from this document.
Archived note body
Plain text · original whitespace retained
Your files have been stolen from your network and encrypted with a military class algorithm. We work for money and are not associated with politics. All you need to do is contact us and pay decrypt fee.
--- Our interaction process:
1. You contact us.
1. We send you a list of files that were stolen.
2. We decrypt 3 files to confirm that our decryptor works.
3. You pay the amount in BTC, that was established in our negotiations.
4. You get decryptor, approve that all data is secure.
5. We wipe out all your data from our database and give you a detailed security breach report with security improve advices.
--- Client area (use this site to contact us):
Link for Tor Browser: http://pippahtohg6qgioqu3ixrsueefuw7thythmmeanyrgwn3eixcuu6jvqd.onion/[snip]
>>> to begin the recovery process.
* In order to access the site, you will need Tor Browser,
you can download it from this link: https://www.torproject.org/
--- Additional contacts:
Support Tox: 9A1217BEDA4AB77052A25D17CB6FFB34AFA2BE462E607F2FD8E1DF1DDD4CA16A64E18B1A0BF2
--- Recommendations:
DO NOT RESET OR SHUTDOWN PC's - files may be damaged.
DO NOT RENAME OR MOVE the encrypted and readme files.
DO NOT DELETE readme files.
--- Important:
If you refuse to pay or do not get in touch with us, we start publishing your files, as well as share them to your competitors.